aws-sagemaker-pipeline-definition

SageMaker pipeline JSON can hard-code parameters, environment variables, commands, and data locations containing credentials.

awscritical service: aws:sagemaker emits ContainsCredential

Where it sits

locationDescribePipeline.PipelineDefinition
location kindtemplate_document
data kindscredential password api_key connection_string source_code_secret
emits edgeContainsCredential
serviceSageMaker (aws:sagemaker)

Collection recipe

access moderead_api
operationDescribePipeline
response pathPipelineDefinition
encodingjson
params{"PipelineName": "\u003cpipeline-name\u003e"}

Required permissions

sagemaker:DescribePipeline

References

move · open · esc close